graphql-java-kickstart/graphql-spring-boot

CVE-2023-28867 affects all recent versions (including v15)

moddx opened this issue · 0 comments

moddx commented

CVE-2023-28867 affects all recent versions, using graphql-java prior to 20.1. Fixes have been made in graphql-java 17.5, 18.4, 19.4e and 20.1.